Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2026:3399-1

Опубликовано: 29 июл. 2026
Источник: suse-cvrf

Описание

Security update for gimp

This update for gimp fixes the following issues

  • CVE-2026-58379: Heap buffer overflow in read_channel_data() (bsc#1270299).
  • CVE-2026-58380: Stack buffer overflow in pnmscanner_gettoken() (bsc#1270444).
  • CVE-2026-58381: double-free in read_layer_block() (bsc#1270239).

Список пакетов

SUSE Linux Enterprise Module for Package Hub 15 SP7
gimp-2.10.30-150400.3.58.1
gimp-devel-2.10.30-150400.3.58.1
gimp-lang-2.10.30-150400.3.58.1
gimp-plugin-aa-2.10.30-150400.3.58.1
libgimp-2_0-0-2.10.30-150400.3.58.1
libgimpui-2_0-0-2.10.30-150400.3.58.1
SUSE Linux Enterprise Workstation Extension 15 SP7
gimp-2.10.30-150400.3.58.1
gimp-devel-2.10.30-150400.3.58.1
gimp-lang-2.10.30-150400.3.58.1
libgimp-2_0-0-2.10.30-150400.3.58.1
libgimpui-2_0-0-2.10.30-150400.3.58.1

Описание

A flaw was found in GIMP's Paint Shop Pro (PSP) file format parser. This heap buffer overflow vulnerability allows a remote attacker to cause arbitrary code execution or a denial of service (DoS) by tricking a user into opening a specially crafted PSP image file. The vulnerability occurs because the software incorrectly calculates buffer sizes when processing low bit-depth images, leading to an overwrite of adjacent memory.


Затронутые продукты
SUSE Linux Enterprise Module for Package Hub 15 SP7:gimp-2.10.30-150400.3.58.1
SUSE Linux Enterprise Module for Package Hub 15 SP7:gimp-devel-2.10.30-150400.3.58.1
SUSE Linux Enterprise Module for Package Hub 15 SP7:gimp-lang-2.10.30-150400.3.58.1
SUSE Linux Enterprise Module for Package Hub 15 SP7:gimp-plugin-aa-2.10.30-150400.3.58.1

Ссылки

Описание

A flaw was found in GIMP's PNM file format parser. When parsing a specially crafted PNM file, the pnmscanner_gettoken() function writes a null terminator one byte past the end of a stack-allocated buffer due to an off-by-one error in the loop boundary check. This could lead to memory corruption, potentially resulting in denial of service or arbitrary code execution.


Затронутые продукты
SUSE Linux Enterprise Module for Package Hub 15 SP7:gimp-2.10.30-150400.3.58.1
SUSE Linux Enterprise Module for Package Hub 15 SP7:gimp-devel-2.10.30-150400.3.58.1
SUSE Linux Enterprise Module for Package Hub 15 SP7:gimp-lang-2.10.30-150400.3.58.1
SUSE Linux Enterprise Module for Package Hub 15 SP7:gimp-plugin-aa-2.10.30-150400.3.58.1

Ссылки

Описание

A flaw was found in GIMP's PSP file format parser. A double-free condition occurs in the read_layer_block() function when processing a specially crafted PSP file. This could allow an attacker to cause memory corruption, potentially leading to denial of service or arbitrary code execution.


Затронутые продукты
SUSE Linux Enterprise Module for Package Hub 15 SP7:gimp-2.10.30-150400.3.58.1
SUSE Linux Enterprise Module for Package Hub 15 SP7:gimp-devel-2.10.30-150400.3.58.1
SUSE Linux Enterprise Module for Package Hub 15 SP7:gimp-lang-2.10.30-150400.3.58.1
SUSE Linux Enterprise Module for Package Hub 15 SP7:gimp-plugin-aa-2.10.30-150400.3.58.1

Ссылки